Oak’s Vulnerability Research is the sharpest edge of our technical work - the team that takes systems apart to learn how they truly work, and where they break. We go deep into the mechanisms, protocols, and architectures that modern technology is built on, and we pressure-test the assumptions the rest of the industry takes for granted. Sometimes that work sharpens the platform, sometimes it stands entirely on its own, as an original research novelty.
As a Vulnerability Researcher, you’ll build first-principles understanding of the technologies and systems you investigate, then go looking for what’s wrong with them: the flawed assumptions baked into established paradigms, the gap between how a system is meant to behave and how it actually behaves, and the novel vulnerabilities and exploitation techniques no one has named yet. This is hands-on, deep technical work - reverse-engineering, breaking, and finding what’s exploitable before an attacker does.
You’ll have the room to follow the research where it leads, and the backing of an ecosystem created to set you up for success by providing every tool and access that could help.
Some threads will feed directly into how Oak understands what’s genuinely exploitable, grounding the platform in real attacker reality rather than theoretical risk. Others will be pure discovery, pursued because the problem is hard and the finding truly matters, and published to move the field forward.
Either way, your work establishes Oak’s authority in the field. Through original research, disclosures, and technical thought leadership, you’ll build a body of work that earns the respect of the security community and sharpens how the industry thinks about what’s truly secure.